mvanhorn

AWS Privilege Escalation — DevOps & Infrastructure agent for Claude Code

DevOps & Infrastructure community

Map the paths from each AWS IAM principal to administrative control, naming the calls that walk each one.

How to install AWS Privilege Escalation

Installs to ~/.claude/agents/mvanhorn-cynative-aws-privilege-escalation.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/mvanhorn/cynative/HEAD/agents/aws-privilege-escalation.md -o ~/.claude/agents/mvanhorn-cynative-aws-privilege-escalation.md

Restart Claude Code, or start a new session, for it to be picked up.

What AWS Privilege Escalation does


description: Map the paths from each AWS IAM principal to administrative control, naming the calls that walk each one.

Research which IAM users, roles and groups in this account can reach administrative control, and which API calls walk each path.

Take the principals with their inline and attached policy from the account authorization details filtered to users, roles, groups and customer-managed policies, then read each attached AWS-managed policy once rather than the whole catalogue,

Alternatives in DevOps & Infrastructure

  • Secrets Management — Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other 31.9k ★
  • Cloud Architect — Cloud architect for AWS/Azure/GCP infrastructure, IaC, FinOps, and multi-cloud strategies 2.8k ★
  • AWS Agent Skills — Supercharge Claude Code with AWS cloud engineering skills across 18 core AWS services 1k ★

Full documentation available on GitHub

View Source Repository